Skip to main content

Installation of mTLS Certificates for the docu tools Hybrid Solution (on-premise)

Updated over a week ago

Target Audience

This guide is intended for administrators and end-users of your company who use the hybrid variant of docu tools, where access to a data storage is via Mutual-TLS (mTLS) and a ca.p7b and a client.p12 File are offered for download in the web application dialog window.

Prerequisites

  • You have downloaded the ca.p7b (Certification Authority) and client.p12 (Client Certificate with private key) Files from the web application dialog window.

  • The .p12 File is not password protected.

  • You are using Windows or macOS with one of the following browsers: Microsoft Edge, Google Chrome.

  • You have sufficient permissions to Import certificates.

Note: The ca.p7b File contains the certificate of the Certification Authority, the client.p12 File the personal client certificate and the key. Both must be installed for the mTLS connection to work.


1. Installation of the Certification Authority Certificate (ca.p7b)

Windows

  1. Open the browser → Settings → Privacy and Security → Security → "Manage Certificates".

  2. Switch to "Local Certificates" → "Trusted Certificates" → "Import".

  3. Select the ca.p7b File.

  4. Complete the Import.

macOS

  1. Double-click on the .p7b File.

  2. Choose "System" or "login" keychain.

  3. Confirm the Import with your macOS Password.


2. Installation of the Client Certificate (client.p12)

A) Windows (Edge / Chrome)

  1. Open the browser → Settings → Privacy and Security → Security → "Manage Certificates".

  2. Switch to "Personal Certificates" → "Import".

  3. Select the client.p12 File.

  4. Since no Password is required, Click directly on Continue.

  5. Complete the Import.

B) macOS (Edge / Chrome)

  1. Double-click on client.p12 File → Keychain Access opens.

  2. Choose keychain "login" or "System".

  3. No Password needed → Certificate is directly Imported.

  4. Restart the browser → open docu tools → select Certificate.


4. Verification and Testing

  • Open the web application of docu tools.

  • When accessing, a dialog appears to select the Certificate.

  • Select your client Certificate → access should be possible.

Troubleshooting Problems:

  • Incorrect or expired Certificate?

  • Certification Authority Certificate not installed?

  • Restart browser?

  • Certificate in the wrong location?


5. Renewal / Replacement of Certificates

  • Remove the old Certificate from the certificate store.

  • Install the new client.p12 Certificate as described above.

  • Update the ca.p7b Certification Authority Certificate if necessary.


6. Common Sources of Errors

  • Certificate in the wrong location (e.g., "Other People").

  • .cer instead of .p12 → no private key → does not work.

  • macOS asks in keychain for "Always Allow" → take note.


7. Summary

Step

Description

1. Install Certificate Chain

Import ca.p7b

2. Install Client Certificate

Import client.p12 File

3. Test Access

Open docu tools → select Certificate


For further questions, please contact your IT department or the support of docu tools.

Did this answer your question?